The package includes tests, a README, frequent releases, and no install-time scripts. Security documentation is absent, and all recent commits come from one person, so continuity depends heavily on that maintainer.
73%
Total Score
67
93
75
The repository is owned by a user account rather than an organization, so there is no shown organizational backing to offset the concentrated maintainer base.
All 6 recent commits came from one contributor, creating a meaningful continuity risk for this individually owned project.
Composer is used for builds, but no security scanning tools were detected; this is a modest transparency and maintenance gap rather than a severe risk.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
luan-tavares/simple-curl Version ^2.0 | — | — |
luan-tavares/list-methods Version ^1.0 | — | — |
luan-tavares/simple-deploy Version ^1.0 | — | — |
luan-tavares/hubspot-request-body Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.